Patch "lib/crypto: riscv/chacha: Avoid s0/fp register" has been added to the 6.12-stable tree

gregkh at linuxfoundation.org gregkh at linuxfoundation.org
Mon Jan 5 06:19:27 PST 2026


This is a note to let you know that I've just added the patch titled

    lib/crypto: riscv/chacha: Avoid s0/fp register

to the 6.12-stable tree which can be found at:
    http://www.kernel.org/git/?p=linux/kernel/git/stable/stable-queue.git;a=summary

The filename of the patch is:
     lib-crypto-riscv-chacha-avoid-s0-fp-register.patch
and it can be found in the queue-6.12 subdirectory.

If you, or anyone else, feels it should not be added to the stable tree,
please let <stable at vger.kernel.org> know about it.


>From stable+bounces-204145-greg=kroah.com at vger.kernel.org Mon Dec 29 23:39:13 2025
From: Eric Biggers <ebiggers at kernel.org>
Date: Mon, 29 Dec 2025 14:37:29 -0800
Subject: lib/crypto: riscv/chacha: Avoid s0/fp register
To: stable at vger.kernel.org
Cc: linux-crypto at vger.kernel.org, linux-riscv at lists.infradead.org, Vivian Wang <wangruikang at iscas.ac.cn>, Eric Biggers <ebiggers at kernel.org>
Message-ID: <20251229223729.99861-1-ebiggers at kernel.org>

From: Vivian Wang <wangruikang at iscas.ac.cn>

commit 43169328c7b4623b54b7713ec68479cebda5465f upstream.

In chacha_zvkb, avoid using the s0 register, which is the frame pointer,
by reallocating KEY0 to t5. This makes stack traces available if e.g. a
crash happens in chacha_zvkb.

No frame pointer maintenance is otherwise required since this is a leaf
function.

Signed-off-by: Vivian Wang <wangruikang at iscas.ac.cn>
Fixes: bb54668837a0 ("crypto: riscv - add vector crypto accelerated ChaCha20")
Cc: stable at vger.kernel.org
Link: https://lore.kernel.org/r/20251202-riscv-chacha_zvkb-fp-v2-1-7bd00098c9dc@iscas.ac.cn
Signed-off-by: Eric Biggers <ebiggers at kernel.org>
Signed-off-by: Greg Kroah-Hartman <gregkh at linuxfoundation.org>
---
 arch/riscv/crypto/chacha-riscv64-zvkb.S |    5 ++---
 1 file changed, 2 insertions(+), 3 deletions(-)

--- a/arch/riscv/crypto/chacha-riscv64-zvkb.S
+++ b/arch/riscv/crypto/chacha-riscv64-zvkb.S
@@ -60,7 +60,8 @@
 #define VL		t2
 #define STRIDE		t3
 #define NROUNDS		t4
-#define KEY0		s0
+#define KEY0		t5
+// Avoid s0/fp to allow for unwinding
 #define KEY1		s1
 #define KEY2		s2
 #define KEY3		s3
@@ -141,7 +142,6 @@ SYM_FUNC_START(chacha20_zvkb)
 	srli		LEN, LEN, 6	// Bytes to blocks
 
 	addi		sp, sp, -96
-	sd		s0, 0(sp)
 	sd		s1, 8(sp)
 	sd		s2, 16(sp)
 	sd		s3, 24(sp)
@@ -277,7 +277,6 @@ SYM_FUNC_START(chacha20_zvkb)
 	add		INP, INP, TMP
 	bnez		LEN, .Lblock_loop
 
-	ld		s0, 0(sp)
 	ld		s1, 8(sp)
 	ld		s2, 16(sp)
 	ld		s3, 24(sp)


Patches currently in stable-queue which might be from ebiggers at kernel.org are

queue-6.12/lib-crypto-riscv-chacha-avoid-s0-fp-register.patch
queue-6.12/lib-crypto-x86-blake2s-fix-32-bit-arg-treated-as-64-bit.patch



More information about the linux-riscv mailing list